Skip to content

Consider changing the default value of proxy_ssl_verify_depth #1409

@Hill-98

Description

@Hill-98

Feature Overview

The latest Let's Encrypt certificates utilize two intermediate certificates, which causes the default proxy_ssl_verify_depth 1 to throw an unable to get local issuer certificate error. Is it possible to change this default value?

Alternatives Considered

No response

Additional Context

https://letsencrypt.org/2025/11/24/gen-y-hierarchy.html

Metadata

Metadata

Assignees

No one assigned

    Type

    No type
    No fields configured for issues without a type.

    Projects

    Status
    New

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions